Security Policy¶
- Please report vulnerabilities via GitHub Security Advisories (preferred) or email security@bit2coin.org.
- Do not open public issues for vulnerabilities.
- We will acknowledge receipt within 72 hours and provide a remediation timeline after triage.
Scope¶
- All code and scripts in this repository, including snapshot tooling.
Optional encryption¶
If you need to encrypt your report, share a PGP public key fingerprint in your initial contact and we will provide a key for encrypted exchange.